Anthropic said cybercriminals, state-backed hackers, and influence operators abused Claude models for attacks, propaganda, weapons design, and surveillance between December 2025 and August 2026. The report highlights a wide range of GTGs, including campaigns linked to Midnight Blizzard, ShinyHunters, and China-, Iran-, Russia-, and Bangladesh-based operations. #Claude #MidnightBlizzard #ShinyHunters #LKMCompany #S2TUnlockingCyberspace #PMOI #NCRI #Lakana360 #SECOMS64
Keypoints
- Anthropic warned that Claude was used for cyber attacks, propaganda, weapons design, and mass surveillance.
- The company identified multiple Generative Threat Groups spanning state-sponsored, criminal, and commercial spyware actors.
- GTG-20006 was linked to Russian state-sponsored activity with overlaps to Midnight Blizzard.
- ShinyHunters affiliates used Claude for credential harvesting, supply-chain theft, and data exfiltration.
- Other actors used Claude for influence operations, surveillance platforms, phishing, malware, and autonomous exploitation.
Read More: https://thehackernews.com/2026/09/claude-used-to-automate-exploitation.html